cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.1.19.18 Par Nicolas Coolman (2016/01/19)
~ Démarré par lhyla (Administrator) (2016/01/22 12:33:40)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\lhyla\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\lhyla\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 8, 64-bit (Build 9200)

---\\ Navigateurs Internet (1) - 0s
MSIE: Internet Explorer v10.0.9200.16466

---\\ Informations sur les produits Windows (3) - 4s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ Logiciels de protection (2) - 5s
AVG Protection v2016.31.7357
Windows Defender W8 (Deactivate)

---\\ Informations sur le système (6) - 0s
~ Operating System: AMD64 Family 20 Model 2 Stepping 0, AuthenticAMD
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 5843.204 MB (50% free)
System Restore: Activé (Enable)
System drive C: has 656 GB () free of 696 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: LHYLA
~ User Name: lhyla
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 322s
~ Drive C: has 656 GB free of 696 GB (System)
~ Drive D: has GB free of 2 GB
~ Drive E: has 7 GB free of 7 GB

---\\ Etat du Centre de Sécurité Windows (10) - 1s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (25) - 4s
[MD5.E13A31D5254C25406A7946BDD9B06364] - 11/10/2012 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [2380944] =>.Microsoft Windows®
[MD5.3A6209AC494296C24C2065CB4392B5F4] - 26/07/2012 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [51712] =>.Microsoft Corporation
[MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - 26/07/2012 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [132608] =>.Microsoft Corporation
[MD5.AAEF73606F58ADE710208F4B1B988FBF] - 08/11/2012 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [2246656] =>.Microsoft Corporation
[MD5.BCF2036A0DD579E47C008C133550283E] - 11/10/2012 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [517120] =>.Microsoft Corporation
[MD5.9448F5740A037EC0C18F0E9177232DD0] - 26/07/2012 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [273408] =>.Microsoft Corporation
[MD5.4D10F9BB8243BCBF39774BF4D6B0D108] - 26/07/2012 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [604672] =>.Microsoft Corporation
[MD5.6356C0630362CC80E4318A672FF66804] - 26/07/2012 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [461312] =>.Microsoft Corporation
[MD5.65AA2DE8787146679BB8A7D14BFFB6A3] - 23/05/2013 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [18944] =>.Microsoft Corporation
[MD5.36D6A3201721558A8AFBCC09C2DA4C2C] - 06/11/2012 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [560640] =>.Microsoft Corporation
[MD5.A721FF570C2387E383BDDEA9632863C9] - 26/07/2012 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [25840] =>.Microsoft Windows®
[MD5.990B1BABE6E81FB18E65A87EBEFB1772] - 26/07/2012 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [108544] =>.Microsoft Corporation
[MD5.339BFF85D788268752DA8C9644B188EE] - 26/07/2012 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080] =>.Microsoft Corporation
[MD5.09D9EB9E7898F8E6561473A20CC808B9] - 26/07/2012 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [118784] =>.Microsoft Corporation
[MD5.8D6810577E9C4F56DCB8E9BACAC7287B] - 26/07/2012 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [71168] =>.Microsoft Corporation
[MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - 26/07/2012 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [112640] =>.Microsoft Corporation
[MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - 26/07/2012 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [145920] =>.Microsoft Corporation
[MD5.877D60D6E4156EC4A2E0B6871D41BED9] - 06/11/2012 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [366080] =>.Microsoft Corporation
[MD5.7CEC25C682D319D484630B3952C31A11] - 26/07/2012 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [331776] =>.Microsoft Corporation
[MD5.4A7EEA9C4AD5CBFDA3C0E5B821C99CAD] - 26/07/2012 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [1934064] =>.Microsoft Windows®
[MD5.4563DAF8C6A740AD7F501E219BD10766] - 26/07/2012 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [105984] =>.Microsoft Corporation
[MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - 26/07/2012 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [124928] =>.Microsoft Corporation
[MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - 26/07/2012 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [179712] =>.Microsoft Corporation
[MD5.73DC722CE5DF26D7638CE2446F2655C7] - 26/07/2012 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117248] =>.Microsoft Corporation
[MD5.2FB3CDFD5EAF4CD9D4AFAF96877D13AE] - 26/07/2012 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [332016] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (12) - 9s
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\WINDOWS\system32\atiesrxx.exe =>.AMD
O23 - Service: AVGIDSAgent (AVGIDSAgent) . (.AVG Technologies CZ, s.r.o. - AVG Identity Protection Service.) - C:\Program Files (x86)\AVG\Av\avgidsagent.exe =>.AVG Technologies CZ, s.r.o.®
O23 - Service: AVG Service (avgsvc) . (.AVG Technologies CZ, s.r.o. - AVG Service Process.) - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe =>.AVG Technologies CZ, s.r.o.®
O23 - Service: AVG WatchDog (avgwd) . (.AVG Technologies CZ, s.r.o. - AVG Watchdog Service.) - C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe =>.AVG Technologies CZ, s.r.o.®
O23 - Service: @C:\Windows\system32\CxAudMsg64.exe,-100 (CxAudMsg) . (.Conexant Systems Inc. - Conexant Audio Message Service.) - C:\Windows\System32\CxAudMsg64.exe =>.Conexant Systems, Inc.®
O23 - Service: Dritek WMI Service (DsiWMIService) . (.Dritek System Inc. - Dritek WMI Service.) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe =>.Dritek System Inc.®
O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Patch Tool..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe =>.Realtek Semiconductor Corp®
O23 - Service: @c:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) . (.Nero AG - NeroUpdate.) - c:\Program Files (x86)\Nero\Update\NASvc.exe =>.Nero AG®
O23 - Service: Norton Online Backup (NOBU) . (.Symantec Corporation - Norton Online Backup Service.) - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe =>.Symantec Corporation®
O23 - Service: Dritek RF Button Command Service (RfButtonDriverService) . (.Dritek System INC. - RfBtnSvc Application.) - C:\Windows\RfBtnSvc64.exe =>.Dritek System Inc.®
O23 - Service: The Screen Snapshot Service (TheScreenSnapshotService) . (.Copyright (C) 2015 - The Screen Snapshot Service.) - C:\Program Files (x86)\ScreenSnapshotTool\1.1.0.11188\ScreenShotServ.exe =>PUP.Optional.ScreenSnapshotTool
O23 - Service: ZAtheros Wlan Agent (ZAtheros Wlan Agent) . (.Atheros - Atheros Coex Service Application.) - C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe =>.Atheros

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (17) - 111s

SR - Auto [21/08/2012] [ 239616] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe =>.AMD
SS - Demand [08/01/2016] [ 627544] AvgAMPS (AvgAMPS) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Av\avgamps.exe =>.AVG Technologies CZ, s.r.o.®
SR - Auto [08/01/2016] [ 3906568] AVGIDSAgent (AVGIDSAgent) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Av\avgidsagent.exe =>.AVG Technologies CZ, s.r.o.®
SR - Auto [12/01/2016] [ 1048488] AVG Service (avgsvc) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe =>.AVG Technologies CZ, s.r.o.®
SR - Auto [08/01/2016] [ 583936] AVG WatchDog (avgwd) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe =>.AVG Technologies CZ, s.r.o.®
SR - Auto [08/06/2012] [ 201376] @C:\Windows\system32\CxAudMsg64.exe,-100 (CxAudMsg) . (.Conexant Systems Inc..) - C:\Windows\System32\CxAudMsg64.exe =>.Conexant Systems Inc.
SS - Demand [16/11/2012] [ 469648] Device Fast-lane Service (DeviceFastLaneService) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Device Fast-lane\DeviceFastLaneSvc.exe =>.Acer Incorporated®
SR - Auto [10/12/2012] [ 350544] Dritek WMI Service (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe =>.Dritek System Inc.®
SR - Demand [15/03/2013] [ 662088] ePower Service (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe =>.Acer Incorporated®
SS - Demand [12/10/2010] [ 206072] GamesAppService (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe =>.WildTangent Inc®
SR - Auto [24/07/2012] [ 2457232] IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe =>.Realtek Semiconductor Corp®
SR - Auto [14/07/2012] [ 769432] @c:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) . (.Nero AG.) - c:\Program Files (x86)\Nero\Update\NASvc.exe =>.Nero AG®
SR - Auto [15/08/2012] [ 3943104] Norton Online Backup (NOBU) . (.Symantec Corporation.) - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe =>.Symantec Corporation®
SR - Auto [22/05/2013] [ 93296] Dritek RF Button Command Service (RfButtonDriverService) . (.Dritek System INC..) - C:\Windows\RfBtnSvc64.exe =>.Dritek System Inc.®
SR - Auto [24/12/2015] [ 141984] The Screen Snapshot Service (TheScreenSnapshotService) . (.Copyright (C) 2015.) - C:\Program Files (x86)\ScreenSnapshotTool\1.1.0.11188\ScreenShotServ.exe =>PUP.Optional.ScreenSnapshotTool
SR - Auto [31/07/2012] [ 81536] ZAtheros Wlan Agent (ZAtheros Wlan Agent) . (.Atheros.) - C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe =>.Atheros

---\\ Tâches planifiées en automatique (6) - 11s
[MD5.F92019F2A58640821B109B30193D5E7D] [APT] [ALU] (.(C) All rights reserved.) -- C:\Program Files (x86)\Packard Bell\Live Updater\updater.exe [3367976] =>.Acer Incorporated®
[MD5.B690DE3B3D28AD45112BE310780DBE8D] [APT] [ALUAgent] (.(C) All rights reserved.) -- C:\Program Files (x86)\Packard Bell\Live Updater\liveupdater_agent.exe [40008] =>.Acer Incorporated®
[MD5.D7E16AB9AAB8BFA219D84C79536319E2] [APT] [Power Management] (.Acer Incorporated.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe [5306440] =>.Acer Incorporated®
O39 - APT: ALU - (.(C) All rights reserved.) -- C:\WINDOWS\System32\Tasks\ALU [3642]
O39 - APT: ALUAgent - (.(C) All rights reserved.) -- C:\WINDOWS\System32\Tasks\ALUAgent [4418]
O39 - APT: Power Management - (.Acer Incorporated.) -- C:\WINDOWS\System32\Tasks\Power Management [2946] =>.Acer Incorporated

---\\ Processus lancés (34) - 7s
[MD5.272FF1C0F65D39E68618338C0DA47535] - (.AVG Technologies CZ, s.r.o. - AVG Resident Shield Service.) -- c:\Program Files (x86)\AVG\Av\avgrsa.exe [1230248] [PID.420] =>.AVG Technologies CZ, s.r.o.®
[MD5.97F1AA36759DAD3E97DB5602A7B1EE01] - (.AVG Technologies CZ, s.r.o. - AVG Scanning Core Module - Server Part.) -- C:\Program Files (x86)\AVG\Av\avgcsrva.exe [1021864] [PID.520] =>.AVG Technologies CZ, s.r.o.®
[MD5.873A771EB58CE14BBFFBB290ACF5D4E4] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [239616] [PID.1068] =>.AMD
[MD5.BE0A47857BAF9819DC7DAB73D758DEDC] - (.AVG Technologies CZ, s.r.o. - AVG Identity Protection Service.) -- C:\Program Files (x86)\AVG\Av\avgidsagent.exe [3906568] [PID.1900] =>.AVG Technologies CZ, s.r.o.®
[MD5.05927BED96CF7E1DA308870C6D5C5792] - (.AVG Technologies CZ, s.r.o. - AVG Service Process.) -- C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1048488] [PID.1936] =>.AVG Technologies CZ, s.r.o.®
[MD5.B7C710DF4CE8063801421257F329D567] - (.AVG Technologies CZ, s.r.o. - AVG Watchdog Service.) -- C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe [583936] [PID.1028] =>.AVG Technologies CZ, s.r.o.®
[MD5.48AED45DF009081AF3F5144F7D624674] - (.Conexant Systems Inc. - Conexant Audio Message Service.) -- C:\Windows\System32\CxAudMsg64.exe [201376] [PID.1412] =>.Conexant Systems, Inc.®
[MD5.D2BCDD6BBFCD068090C109854FCEE079] - (.Dritek System Inc. - Dritek WMI Service.) -- C:\Program Files (x86)\Launch Manager\dsiwmis.exe [350544] [PID.720] =>.Dritek System Inc.®
[MD5.9B70CE32DD84A674B100BEA37F756016] - (.Symantec Corporation - Norton Online Backup Service.) -- C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [3943104] [PID.2124] =>.Symantec Corporation®
[MD5.CF59781FCB68F859EB6C835ED285211D] - (.Dritek System INC. - RfBtnSvc Application.) -- C:\Windows\RfBtnSvc64.exe [93296] [PID.2192] =>.Dritek System Inc.®
[MD5.EA3EB3401593C7E4288ED83E2BD43417] - (.Copyright (C) 2015 - The Screen Snapshot Service.) -- C:\Program Files (x86)\ScreenSnapshotTool\1.1.0.11188\ScreenShotServ.exe [141984] [PID.2248] =>PUP.Optional.ScreenSnapshotTool
[MD5.BB1842E3AA602B401F7692718B0D0F9A] - (.Atheros - Atheros Coex Service Application.) -- C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe [81536] [PID.2500] =>.Atheros
[MD5.70FB1437E83E6EFFFE4D8A3871CE3FD8] - (.AVG Technologies CZ, s.r.o. - AVG Online Shield Service.) -- C:\Program Files (x86)\AVG\Av\avgnsa.exe [1696680] [PID.2944] =>.AVG Technologies CZ, s.r.o.®
[MD5.B746104CE9595214734E2E3CE3A3D68D] - (.AVG Technologies CZ, s.r.o. - AVG E-mail Scanner.) -- C:\Program Files (x86)\AVG\Av\avgemca.exe [917416] [PID.2968] =>.AVG Technologies CZ, s.r.o.®
[MD5.88191F5AB70C7A25C5266AC6BA52B9F7] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [534528] [PID.3744] =>.AMD
[MD5.302337967FBA91C40745B96A42A39CC5] - (.Dritek System Inc. - Launch Manager utility process.) -- C:\Program Files (x86)\Launch Manager\LMutilps32.exe [475984] [PID.4064] =>.Dritek System Inc.®
[MD5.0EFF23C3D910380746D4F56BA5C746C4] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe [1192784] [PID.3272] =>.Dritek System Inc.®
[MD5.C832579FBB3B17A5856ADE4082782D25] - (.Dritek System Inc. - MMDx64Fx Application.) -- C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe [229200] [PID.4724] =>.Dritek System Inc.®
[MD5.68F92B4565E7E4346623622A92E45ECB] - (.Copyright (C) 2015 - ScreenSn Application.) -- C:\Program Files (x86)\ScreenSnapshotTool\1.1.0.11188\ScreenSnapshot.exe [1824416] [PID.4736] =>PUP.Optional.ScreenSnapshotTool
[MD5.24F37B2CB893109EE4654BBE62E82C5F] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe [661400] [PID.3240] =>.Alps Electric Co., LTD.®
[MD5.70C942A269A32D03B8ED0EB04B81D744] - (.Alps Electric Co., Ltd. - ApMsgFwd.) -- C:\Program Files\Apoint2K\ApMsgFwd.exe [70520] [PID.1244] =>.Alps Electric Co., LTD.®
[MD5.1B0E5412AB8F30B8ED2AEAC2C530EB90] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Hidfind.exe [98672] [PID.4220] =>.Alps Electric Co., LTD.®
[MD5.FD97807051658AE27799BE3A557D3776] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver for Windows NT/.) -- C:\Program Files\Apoint2K\ApntEx.exe [29552] [PID.4472] =>.Alps Electric Co., LTD.®
[MD5.258787FCC959E3B04EF30F9876D31B6C] - (.AVG Technologies CZ, s.r.o. - AVG User Interface.) -- C:\Program Files (x86)\AVG\Framework\Common\avguix.exe [1140648] [PID.3136] =>.AVG Technologies CZ, s.r.o.®
[MD5.E5712B814CFDC973D20F11A1678FA858] - (.AVG Technologies CZ, s.r.o. - AVG User Interface.) -- C:\Program Files (x86)\AVG\Av\avgui.exe [3874216] [PID.4164] =>.AVG Technologies CZ, s.r.o.®
[MD5.D7E16AB9AAB8BFA219D84C79536319E2] - (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe [5306440] [PID.5096] =>.Acer Incorporated®
[MD5.616E1B9130314EB0E331197940AA625B] - (.Acer Incorporated - ePowerSvc.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [662088] [PID.4392] =>.Acer Incorporated®
[MD5.91647EAD53B68EFFDF17EC2FC9DF4018] - (.Acer Incorporated - ePowerEvent.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe [393800] [PID.1740] =>.Acer Incorporated®
[MD5.5AD5A7781BE907D6E2D75CA1DADAA97B] - (.Realsil Microelectronics Inc. - Realtek Card Reader Patch Tool..) -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2457232] [PID.5396] =>.Realtek Semiconductor Corp®
[MD5.E0E4A1F81A7D69C595A8A9DDAD084C19] - (.Nero AG - NeroUpdate.) -- c:\Program Files (x86)\Nero\Update\NASvc.exe [769432] [PID.5448] =>.Nero AG®
[MD5.C6CAB8F629AE677E4B5AE0D9E28241E6] - (.Acer Incorporated - Notification.) -- C:\Program Files\Packard Bell\Packard Bell Recovery Management\Notification\Notification.exe [523848] [PID.1692] =>.Acer Incorporated®
[MD5.78C11E69AAE06ED6024FC03A1F4C616C] - (.Nicolas Coolman - ZHPDiag.) -- E:\ZHPDiag3.exe [2085888] [PID.3980] =>.Nicolas Coolman
[MD5.78C11E69AAE06ED6024FC03A1F4C616C] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\lhyla\AppData\Roaming\ZHP\ZHPDiag3.exe [2085888] [PID.6104] =>.Nicolas Coolman
[MD5.F92019F2A58640821B109B30193D5E7D] - (.(C) All rights reserved - Live Updater.) -- C:\Program Files (x86)\Packard Bell\Live Updater\updater.exe [3367976] [PID.4420] =>.Acer Incorporated®

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (1) - 0s
P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (.WildTangent.) -- C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll =>.WildTangent

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (18) - 2s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.hao123.com/ =>PUP.Optional.Browser
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.hao123.com/ =>PUP.Optional.Browser
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://fr.hao123.com/ =>PUP.Optional.Browser
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Applications lancées au démarrage du système (6) - 1s
O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe =>.Alps Electric Co., LTD.®
O4 - HKLM\..\Wow6432Node\Run: [LManager] (Orphean)
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe =>.Advanced Micro Devices, Inc.®
O4 - HKLM\..\Wow6432Node\Run: [Norton Online Backup] . (.Symantec Corporation - Norton Online Backup Service.) -- C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe =>.Symantec Corporation®
O4 - HKLM\..\Wow6432Node\Run: [AvgUi] . (.AVG Technologies CZ, s.r.o. - AVG Ui (Re)Starter.) -- C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe =>.AVG Technologies CZ, s.r.o.®
O4 - HKLM\..\Wow6432Node\Run: [AVG_UI] . (.AVG Technologies CZ, s.r.o. - None.) -- C:\Program Files (x86)\AVG\Av\avuirunnerx.exe =>.AVG Technologies CZ, s.r.o.®

---\\ Raccourcis Global Startup (15) - 8s
O4 - GS\Desktop [Administrateur]: Continue installation .lnk . (.Copyright (C) 2014 - .) C:\Users\lhyla\AppData\Local\Temp\Windows81LoaderbyDAZCompleteActivatorDownload__11652_i1827802804_il7.exe
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\lhyla\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\TaskBar [Administrateur]: File Explorer.lnk . (...) C:\Users\lhyla\AppData\Roaming\Microsoft\Windows\Libraries
O4 - GS\TaskBar [Administrateur]: Packard Bell Device Fast-lane.lnk . (.Acer Incorporated - .) C:\Program Files (x86)\Packard Bell\Packard Bell Device Fast-lane\DeviceFastLaneUI.exe =>.Acer Incorporated
O4 - GS\TaskBar [Administrateur]: Packard Bell Power Button.lnk . (.Acer Incorporated - .) C:\Program Files (x86)\Packard Bell\Packard Bell Power Management\ePowerButton.exe =>.Acer Incorporated
O4 - GS\Desktop [lhyla]: Continue installation .lnk . (.Copyright (C) 2014 - .) C:\Users\lhyla\AppData\Local\Temp\Windows81LoaderbyDAZCompleteActivatorDownload__11652_i1827802804_il7.exe
O4 - GS\Desktop [lhyla]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\lhyla\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\TaskBar [lhyla]: File Explorer.lnk . (...) C:\Users\lhyla\AppData\Roaming\Microsoft\Windows\Libraries
O4 - GS\TaskBar [lhyla]: Packard Bell Device Fast-lane.lnk . (.Acer Incorporated - .) C:\Program Files (x86)\Packard Bell\Packard Bell Device Fast-lane\DeviceFastLaneUI.exe =>.Acer Incorporated
O4 - GS\TaskBar [lhyla]: Packard Bell Power Button.lnk . (.Acer Incorporated - .) C:\Program Files (x86)\Packard Bell\Packard Bell Power Management\ePowerButton.exe =>.Acer Incorporated
O4 - GS\CommonDesktop [Public]: AVG.lnk . (.AVG Technologies CZ, s.r.o. - AVG User Interface.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe =>.AVG Technologies CZ, s.r.o.®
O4 - GS\CommonDesktop [Public]: eBay.lnk . (...) c:\WINDOWS\Installer\{91589413-6675-4C27-8AFC-EFB9103B90A5}\_1ADE67C705AECB54139530.exe
O4 - GS\CommonDesktop [Public]: Norton Online Backup.lnk . (.Symantec Corporation - Norton Online Backup Service.) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe =>.Symantec Corporation®
O4 - GS\CommonDesktop [Public]: WildTangent Games App - packardbell.lnk . (.WildTangent - WildTangent Games App.) C:\Program Files (x86)\WildTangent Games\App\GameConsole-wt.exe =>.WildTangent Inc®
O4 - GS\CommonDesktop [Public]: WinZip Malware Protector.lnk . (.Nico Mak Computing - WinZip Malware Protector.) C:\Program Files (x86)\WinZip Malware Protector\WinZipMalwareProtector.exe =>.WinZip Computing LLC®

---\\ Modification Domaine/Adresses DNS (4) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{DA51A9C5-EB3D-4888-ADE1-258ADCC85B5B}: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{EFE96B52-A72C-4F4A-8873-4EEE18246DF3}: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{DA51A9C5-EB3D-4888-ADE1-258ADCC85B5B}: DhcpDomain = line2.com

---\\ Protocole additionnel (20) - 2s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation®

---\\ Logiciels installés (82) - 29s
O42 - Logiciel: Advanced ScreenSnapshotTool 1.1.0.11188 - (.ShenZhen Enode Techology co,.Ltd.) [HKLM][64Bits] -- {61FFE1F9-137D-4c31-A181-3415FCAA5946} =>PUP.Optional.ScreenSnapshotTool
O42 - Logiciel: ALPS Touch Pad Driver - (.Alps Electric.) [HKLM][64Bits] -- {9F72EF8B-AEC9-4CA5-B483-143980AFD6FD} =>.Alps Electric Co., LTD.®
O42 - Logiciel: AMD Accelerated Video Transcoding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {2F1EB597-74DA-2C71-C065-BF4C6B89062C} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM][64Bits] -- {503F672D-6C84-448A-8F8F-4BC35AC83441} =>.Advanced Micro Devices Inc.
O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {7BABDF85-566A-FCC6-E6FE-12DCFF3F9FEB} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: AMD VISION Engine Control Center - (.Nom de votre société.) [HKLM][64Bits] -- {136F0577-FF5A-3978-4535-3F8034697982}
O42 - Logiciel: AVG - (.AVG Technologies.) [HKLM][64Bits] -- {F9880989-072C-4520-B525-041F100E0B32} =>.AVG Technologies
O42 - Logiciel: AVG - (.AVG Technologies.) [HKLM][64Bits] -- AvgZen =>.AVG Technologies CZ, s.r.o.®
O42 - Logiciel: AVG 2016 - (.AVG Technologies.) [HKLM][64Bits] -- {C3506E0A-35BE-4AAF-BA41-62E9D9FD3B92} =>.AVG Technologies
O42 - Logiciel: AVG Protection - (.AVG Technologies.) [HKLM][64Bits] -- AVG =>.AVG Technologies CZ, s.r.o.®
O42 - Logiciel: AVG Zen - (.AVG Technologies.) [HKLM][64Bits] -- {5ED53AC5-2BEA-4B9D-8AA2-41AF9565F75A} =>.AVG Technologies
O42 - Logiciel: Bejeweled 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-441e3cc1-f33f-401a-84a5-5958c3e98975 =>.WildTangent Inc®
O42 - Logiciel: ByteFence Anti-Malware - (.Byte Technologies LLC.) [HKLM][64Bits] -- ByteFence =>.Superfluous.ByteTechnologies
O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {33FA327B-E7E2-4E38-BF1A-67DCE285BD5C} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: Catalyst Control Center Graphics Previews Common - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {EB8920E9-5534-2E03-BE4B-B050C9736676} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: Catalyst Control Center InstallProxy - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {A3DD31D0-9B99-7222-B038-7D7EF43ED72C} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: Catalyst Control Center Localization All - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {6EC7E0E1-5BCA-A74E-CA99-79E765BB271E} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Chinese Standard - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {B860F5DA-9908-FF57-005C-3BBABDB60E7A} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Chinese Traditional - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {F2F8656A-BDEC-0852-D9FB-8088B9357EA5} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Czech - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {698B2C9E-A1B6-37F7-C1E1-EEE252ADC1D0} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Danish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {4993BB61-D98D-8AC1-3F15-1DF54E51192C} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Dutch - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {700EC2DC-84AC-1C3E-0106-CB11B5B4F7D3} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help English - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {B58AC487-F6E9-336E-204C-DD48F0057CDD} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Finnish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {0F4A9F62-336C-A3DB-3DCB-5E35CCF908D3} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help French - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {25347987-6E58-A41F-19D8-D55EACF69DAF} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help German - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {234378F3-28CC-9038-8732-DE44FCD53384} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Greek - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {74D10916-2A98-A824-3CA2-9668D64A0231} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Hungarian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {D0F2B581-5AE4-70B3-95D0-E761BC89E686} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Italian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {9100F286-8053-6382-2DF1-8F50F9E17597} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Japanese - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {0CB90E9C-E1C9-4A83-04D3-BF7A6CB9C376} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Korean - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {4B79E2D3-C5CF-3A41-929E-4FD8D90EE1C3} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Norwegian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {A0E1F04B-9B85-5EEB-86C4-435567588EC3} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Polish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {D3EAAC35-98A9-8231-2648-0C3BB84606A6} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Portuguese - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {3EADFC9D-5747-1F40-B2C9-35EDB21C3B7A} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Russian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {A6ACFAF3-71E6-88DC-083B-C21F15D2C334} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Spanish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {0CCE1791-4AD2-0202-2FE9-308D47482C46} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Swedish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {32DD0880-9000-988D-28FA-CBEC75ADE655} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Thai - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {679F4771-F0E8-BB49-1CB7-6FEEA109DE6A} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: CCC Help Turkish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {E99A5F3B-50D0-F66F-6FDB-C0DC1B90973E} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: ccc-utility64 - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {CE02F046-9083-701A-0996-96190306DD5E} =>.Advanced Micro Devices, Inc.
O42 - Logiciel: Conexant HD Audio - (.Conexant.) [HKLM][64Bits] -- CNXT_AUDIO_HDA =>.Conexant Systems, Inc.®
O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- {B46BEA36-0B71-4A4E-AE41-87241643FA0A} =>.CyberLink Corp.®
O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A} =>.CyberLink Corp.®
O42 - Logiciel: Delicious: Emily's Childhood Memories Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-5d779069-d073-44d4-8bc5-9ba2acbf1df6 =>.WildTangent Inc®
O42 - Logiciel: eBay Worldwide - (.OEM.) [HKLM][64Bits] -- {91589413-6675-4C27-8AFC-EFB9103B90A5} =>.OEM
O42 - Logiciel: FMW 1 - (.AVG Technologies.) [HKLM][64Bits] -- {1F610B48-81E7-4A33-AFC9-1D7602C80732} =>.AVG Technologies
O42 - Logiciel: Governor of Poker 2 Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-d7d0b4e3-f3e7-4286-a056-ac68a86f7871 =>.WildTangent Inc®
O42 - Logiciel: Identity Card - (.Packard Bell.) [HKLM][64Bits] -- {3D9CB654-99AD-4301-89C6-0D12A790767C} =>.Packard Bell
O42 - Logiciel: Jewel Match 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-ed7956a9-3430-48f9-81d5-66b6099074c1 =>.WildTangent Inc®
O42 - Logiciel: John Deere Drive Green - (.WildTangent.) [HKLM][64Bits] -- WTA-c585c88f-414f-43b2-b1f3-cfc4c083803c =>.WildTangent Inc®
O42 - Logiciel: Launch Manager - (.Packard Bell.) [HKLM][64Bits] -- LManager =>.Dritek System Inc.®
O42 - Logiciel: Live Updater - (.Packard Bell.) [HKLM][64Bits] -- {EE26E302-876A-48D9-9058-3129E5B99999} =>.Packard Bell
O42 - Logiciel: Magic Academy - (.WildTangent.) [HKLM][64Bits] -- WTA-645051f9-b1c5-4e88-b8b2-ef75f0ff54b4 =>.WildTangent Inc®
O42 - Logiciel: Nero BackItUp - (.Nero AG.) [HKLM][64Bits] -- {DA2D3078-A58C-45E8-8EE0-18B8BE6B34F7} =>.Nero AG
O42 - Logiciel: Nero BackItUp 12 Essentials OEM.a01 - (.Nero AG.) [HKLM][64Bits] -- {4CA8F973-6377-4ABF-9ED5-CC2323B3C000} =>.Nero AG
O42 - Logiciel: Nero BackItUp Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {EF0D1292-8FC1-41BE-9740-DBC134F66415} =>.Nero AG
O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM][64Bits] -- {ABC88553-8770-4B97-B43E-5A90647A5B63} =>.Nero AG
O42 - Logiciel: Nero ControlCenter Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {C994C746-C6D0-4EBA-B09E-DF7B18381B69} =>.Nero AG
O42 - Logiciel: Nero Core Components - (.Nero AG.) [HKLM][64Bits] -- {BEBEE34D-84A2-4EDD-8BEA-96CC54371263} =>.Nero AG
O42 - Logiciel: Nero Launcher - (.Nero AG.) [HKLM][64Bits] -- {0E4630AF-0AB7-440E-A978-1A78FC4F43B9} =>.Nero AG
O42 - Logiciel: Nero RescueAgent - (.Nero AG.) [HKLM][64Bits] -- {A2D43081-CF7B-4637-A9F3-E2651AA5C4A8} =>.Nero AG
O42 - Logiciel: Nero RescueAgent Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {0B311221-05A5-4766-8D03-7A6446794156} =>.Nero AG
O42 - Logiciel: Nero Update - (.Nero AG.) [HKLM][64Bits] -- {65BB0407-4CC8-4DC7-952E-3EEFDF05602A} =>.Nero AG
O42 - Logiciel: Norton Online Backup - (.Symantec Corporation.) [HKLM][64Bits] -- {40A66DF6-22D3-44B5-A7D3-83B118A2C0DC} =>.Symantec Corporation
O42 - Logiciel: Norton Online Backup ARA - (.Symantec Corporation.) [HKLM][64Bits] -- NARA =>.Symantec Corporation®
O42 - Logiciel: Packard Bell Device Fast-lane - (.Packard Bell.) [HKLM][64Bits] -- {3F62D2FD-13C1-49A2-8B5D-47623D9460D7} =>.Packard Bell
O42 - Logiciel: Packard Bell Power Management - (.Packard Bell.) [HKLM][64Bits] -- {91F52DE4-B789-42B0-9311-A349F10E5479} =>.Packard Bell
O42 - Logiciel: Packard Bell Recovery Management - (.Packard Bell.) [HKLM][64Bits] -- {07F2005A-8CAC-4A4B-83A2-DA98A722CA61} =>.Packard Bell
O42 - Logiciel: Plants vs. Zombies - Game of the Year - (.WildTangent.) [HKLM][64Bits] -- WTA-46877c73-c205-485a-af10-ad1555ce449e =>.WildTangent Inc®
O42 - Logiciel: Prerequisite installer - (.Nero AG.) [HKLM][64Bits] -- {3AAB08A3-F129-4BD5-B409-AE674F93759D} =>.Nero AG
O42 - Logiciel: Qualcomm Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Dr - (.Qualcomm Atheros Communications Inc..) [HKLM][64Bits] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549} =>.Qualcomm Atheros Communications Inc.
O42 - Logiciel: Qualcomm Atheros WiFi Driver Installation - (.Qualcomm Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} =>.Qualcomm Atheros
O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Spotify - (.Spotify AB.) [HKLM][64Bits] -- Spotify =>.Spotify Ltd®
O42 - Logiciel: Tales of Lagoona - (.WildTangent.) [HKLM][64Bits] -- WTA-433d055f-5486-4d09-9276-78d8bb1534f0 =>.WildTangent Inc®
O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App =>.WildTangent Inc®
O42 - Logiciel: Visual Studio 2012 x64 Redistributables - (.AVG Technologies.) [HKLM][64Bits] -- {8C775E70-A791-4DA8-BCC3-6AB7136F4484} =>.AVG Technologies
O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM][64Bits] -- {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} =>.AVG Technologies CZ, s.r.o.
O42 - Logiciel: WildTangent Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent wildgames Master Uninstall =>.WildTangent Inc®
O42 - Logiciel: WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-packardbell =>.WildTangent Inc®
O42 - Logiciel: WinRAR 5.30 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: WinZip Malware Protector - (.WinZip International LLC.) [HKLM][64Bits] -- WinZip Malware Protector_is1 =>.WinZip Computing LLC®

---\\ HKCU & HKLM Software Keys (49) - 29s
HKLM\SOFTWARE\Wow6432Node\AMD
HKLM\SOFTWARE\Wow6432Node\ATHEROS
HKLM\SOFTWARE\Wow6432Node\ATI
HKLM\SOFTWARE\Wow6432Node\ATI Technologies
HKLM\SOFTWARE\Wow6432Node\AVG
HKLM\SOFTWARE\Wow6432Node\Avg Secure Update
HKLM\SOFTWARE\Wow6432Node\ByteFence =>.Superfluous.ByteTechnologies
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\Dritek
HKLM\SOFTWARE\Wow6432Node\EVP
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Lake
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Nero
HKLM\SOFTWARE\Wow6432Node\Nico Mak Computing
HKLM\SOFTWARE\Wow6432Node\Norton
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\OEM
HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros Communications Inc.
HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros WiFi Driver Installation
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Symantec
HKLM\SOFTWARE\Wow6432Node\WildTangent
HKLM\SOFTWARE\Wow6432Node\Wow6432Node
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\Alps
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\ATI
HKCU\SOFTWARE\Avg
HKCU\SOFTWARE\Dritek
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Mine
HKCU\SOFTWARE\Nico Mak Computing
HKCU\SOFTWARE\Norton
HKCU\SOFTWARE\OEM
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\RW-Everything
HKCU\SOFTWARE\Tuguu
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software

---\\ Contenu des dossiers Programmes (122) - 38s
O43 - CFD: 22/05/2013 - [] D -- C:\Program Files (x86)\AMD APP
O43 - CFD: 22/05/2013 - [] D -- C:\Program Files (x86)\AMD AVT
O43 - CFD: 22/05/2013 - [] D -- C:\Program Files (x86)\ATI Technologies
O43 - CFD: 21/01/2016 - [] D -- C:\Program Files (x86)\AVG =>.AVG Technologies CZ, s.r.o.®
O43 - CFD: 21/01/2016 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 22/05/2013 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink Corp.®
O43 - CFD: 22/05/2013 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.Realtek Semiconductor Corp®
O43 - CFD: 23/05/2013 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 22/05/2013 - [] D -- C:\Program Files (x86)\Launch Manager =>.Dritek System Inc.®
O43 - CFD: 22/05/2013 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 26/07/2012 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 02/04/2013 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 02/04/2013 - [] D -- C:\Program Files (x86)\Nero =>.Nero AG®
O43 - CFD: 22/05/2013 - [] D -- C:\Program Files (x86)\Norton Online Backup ARA =>.Symantec Corporation®
O43 - CFD: 21/01/2016 - [] D -- C:\Program Files (x86)\NortonInstaller =>.Symantec Corporation®
O43 - CFD: 21/01/2016 - [] D -- C:\Program Files (x86)\OEM
O43 - CFD: 02/04/2013 - [] D -- C:\Program Files (x86)\Packard Bell =>.Acer Incorporated®
O43 - CFD: 22/05/2013 - [] D -- C:\Program Files (x86)\Qualcomm Atheros
O43 - CFD: 22/05/2013 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp®
O43 - CFD: 02/04/2013 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 21/01/2016 - [] D -- C:\Program Files (x86)\ScreenSnapshotTool =>PUP.Optional.ScreenSnapshotTool =>PUP.Optional.ScreenSnapshotTool
O43 - CFD: 22/05/2013 - [] D -- C:\Program Files (x86)\Spotify =>.Spotify Ltd®
O43 - CFD: 22/05/2013 - [] D -- C:\Program Files (x86)\Symantec =>.Symantec Corporation®
O43 - CFD: 02/04/2013 - [] D -- C:\Program Files (x86)\SymSilent =>.Symantec Corporation®
O43 - CFD: 02/04/2013 - [] D -- C:\Program Files (x86)\WildGames =>.WildTangent Inc®
O43 - CFD: 02/04/2013 - [] D -- C:\Program Files (x86)\WildTangent Games =>.WildTangent Inc®
O43 - CFD: 23/05/2013 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 23/05/2013 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 23/05/2013 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 26/07/2012 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 26/07/2012 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 23/05/2013 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 26/07/2012 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 26/07/2012 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 21/01/2016 - [] D -- C:\Program Files (x86)\WinZip Malware Protector =>.WinZip Computing LLC®
O43 - CFD: 26/07/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 02/04/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 26/07/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 22/05/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center
O43 - CFD: 21/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
O43 - CFD: 21/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen
O43 - CFD: 21/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ByteFence Anti-Malware =>.Superfluous.ByteTechnologies
O43 - CFD: 22/05/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 12
O43 - CFD: 02/04/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 26/07/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 02/04/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
O43 - CFD: 22/05/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Packard Bell
O43 - CFD: 26/07/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 02/04/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 26/07/2012 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 21/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 21/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip Malware Protector
O43 - CFD: 22/05/2013 - [] D -- C:\ProgramData\AMD
O43 - CFD: 26/07/2012 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 21/01/2016 - [] D -- C:\ProgramData\Avg
O43 - CFD: 21/01/2016 - [] D -- C:\ProgramData\Avg_Update_0615piz
O43 - CFD: 22/05/2013 - [] D -- C:\ProgramData\boost_interprocess
O43 - CFD: 21/01/2016 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 22/05/2013 - [] D -- C:\ProgramData\CLSK
O43 - CFD: 21/01/2016 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 22/05/2013 - [] D -- C:\ProgramData\Conexant
O43 - CFD: 22/05/2013 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 26/07/2012 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 26/07/2012 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 22/05/2013 - [] D -- C:\ProgramData\install_clap
O43 - CFD: 21/01/2016 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\MFAData
O43 - CFD: 21/01/2016 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 21/01/2016 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 02/04/2013 - [] D -- C:\ProgramData\Nero
O43 - CFD: 21/01/2016 - [] D -- C:\ProgramData\Nico Mak Computing
O43 - CFD: 21/01/2016 - [] D -- C:\ProgramData\Norton
O43 - CFD: 02/04/2013 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 22/05/2013 - [] D -- C:\ProgramData\OEM
O43 - CFD: 21/01/2016 - [] D -- C:\ProgramData\OEM_YAHOO
O43 - CFD: 02/04/2013 - [] D -- C:\ProgramData\Packard Bell
O43 - CFD: 02/04/2013 - [] D -- C:\ProgramData\PRICache
O43 - CFD: 22/05/2013 - [] D -- C:\ProgramData\Qualcomm Atheros
O43 - CFD: 22/05/2013 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 26/07/2012 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 22/05/2013 - [] D -- C:\ProgramData\Symantec
O43 - CFD: 22/05/2013 - [] D -- C:\ProgramData\Temp
O43 - CFD: 26/07/2012 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 02/04/2013 - [] D -- C:\ProgramData\WildTangent
O43 - CFD: 22/05/2013 - [] D -- C:\Program Files (x86)\Common Files\ATI Technologies
O43 - CFD: 22/05/2013 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 02/04/2013 - [] D -- C:\Program Files (x86)\Common Files\Nero
O43 - CFD: 26/07/2012 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 21/01/2016 - [0] D -- C:\Program Files (x86)\Common Files\Symantec Shared
O43 - CFD: 23/05/2013 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 21/01/2016 - [] D -- C:\Users\lhyla\AppData\Roaming\Adobe
O43 - CFD: 21/01/2016 - [] D -- C:\Users\lhyla\AppData\Roaming\AVG
O43 - CFD: 21/01/2016 - [] D -- C:\Users\lhyla\AppData\Roaming\lm
O43 - CFD: 21/01/2016 - [] D -- C:\Users\lhyla\AppData\Roaming\Macromedia
O43 - CFD: 21/01/2016 - [] SD -- C:\Users\lhyla\AppData\Roaming\Microsoft
O43 - CFD: 21/01/2016 - [] D -- C:\Users\lhyla\AppData\Roaming\Nico Mak Computing
O43 - CFD: 22/01/2016 - [] D -- C:\Users\lhyla\AppData\Roaming\ScreenSnapshotTool =>PUP.Optional.ScreenSnapshotTool
O43 - CFD: 21/01/2016 - [] D -- C:\Users\lhyla\AppData\Roaming\TuneUp Software
O43 - CFD: 21/01/2016 - [] D -- C:\Users\lhyla\AppData\Roaming\WinRAR
O43 - CFD: 22/01/2016 - [] D -- C:\Users\lhyla\AppData\Roaming\ZHP
O43 - CFD: 21/01/2016 - [0] SHD -- C:\Users\lhyla\AppData\Local\Application Data
O43 - CFD: 21/01/2016 - [] D -- C:\Users\lhyla\AppData\Local\Avg
O43 - CFD: 21/01/2016 - [] D -- C:\Users\lhyla\AppData\Local\AvgSetupLog
O43 - CFD: 21/01/2016 - [0] D -- C:\Users\lhyla\AppData\Local\coro
O43 - CFD: 21/01/2016 - [] D -- C:\Users\lhyla\AppData\Local\CrashDumps
O43 - CFD: 21/01/2016 - [] D -- C:\Users\lhyla\AppData\Local\Diagnostics
O43 - CFD: 21/01/2016 - [0] SHD -- C:\Users\lhyla\AppData\Local\Historique
O43 - CFD: 21/01/2016 - [] D -- C:\Users\lhyla\AppData\Local\MFAData
O43 - CFD: 21/01/2016 - [] D -- C:\Users\lhyla\AppData\Local\Microsoft
O43 - CFD: 21/01/2016 - [] D -- C:\Users\lhyla\AppData\Local\Packages
O43 - CFD: 21/01/2016 - [] D -- C:\Users\lhyla\AppData\Local\Setup31160404
O43 - CFD: 22/01/2016 - [] D -- C:\Users\lhyla\AppData\Local\Temp
O43 - CFD: 21/01/2016 - [0] SHD -- C:\Users\lhyla\AppData\Local\Temporary Internet Files
O43 - CFD: 21/01/2016 - [0] D -- C:\Users\lhyla\AppData\Local\VirtualStore
O43 - CFD: 21/01/2016 - [] D -- C:\Users\lhyla\AppData\Local\{EA6CDC30-CEC4-B088-A35C-9560873469F8}
O43 - CFD: 26/07/2012 - [] RD -- C:\Users\lhyla\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 26/07/2012 - [] RD -- C:\Users\lhyla\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 21/01/2016 - [] RD -- C:\Users\lhyla\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 26/07/2012 - [] D -- C:\Users\lhyla\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 21/01/2016 - [] RD -- C:\Users\lhyla\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 26/07/2012 - [] RD -- C:\Users\lhyla\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 21/01/2016 - [] D -- C:\Users\lhyla\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Derniers fichiers créés dans Windows Prefetcher (1) - 33s
O45 - LFCP:[MD5.2B9F2A2CAEF05B9D11A594A38542B048] 21/01/2016 A -- C:\WINDOWS\Prefetch\BYTEFENCE-INSTALLER_2.1.0.3.E-41D094B3.pf =>.Superfluous.ByteTechnologies

---\\ Liste des pilotes du système (51) - 42s
O58 - SDL:2012/07/26 06:00:49 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [106736] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:49 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\WINDOWS\System32\drivers\adp94xx.sys [492272] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:48 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\WINDOWS\System32\drivers\adpahci.sys [340720] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:49 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\WINDOWS\System32\drivers\adpu320.sys [184048] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:49 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [76016] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:49 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [258288] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:48 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26352] =>.Microsoft Windows®
O58 - SDL:2012/11/13 12:24:52 A . (.Alps Electric Co., Ltd. - Alps Touch Pad Driver.) -- C:\WINDOWS\System32\drivers\Apfiltr.sys [452472] =>.Alps Electric Co., LTD.®
O58 - SDL:2013/05/22 17:26:47 A . (.Dritek System Inc. - PS/2 KB to HID Device Driver.) -- C:\WINDOWS\System32\drivers\aPs2Kb2Hid.sys [26736] =>.Dritek System Inc.®
O58 - SDL:2012/07/26 06:00:49 A . (.PMC-Sierra, Inc. - Adaptec RAID Storport Driver.) -- C:\WINDOWS\System32\drivers\arc.sys [104688] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:48 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [108272] =>.Microsoft Windows®
O58 - SDL:2012/08/01 11:41:34 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athw8x.sys [3618304] =>.Qualcomm Atheros Communications, Inc.
O58 - SDL:2012/07/17 01:59:12 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdW86.sys [98472] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2012/08/21 16:36:26 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [10309120] =>.Advanced Micro Devices, Inc.
O58 - SDL:2012/08/21 14:28:02 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [370176] =>.Advanced Micro Devices, Inc.
O58 - SDL:2015/09/09 02:23:42 A . (.AVG Technologies CZ, s.r.o. - AVG Early Launch Anti-Malware Driver.) -- C:\WINDOWS\System32\drivers\avgboota.sys [23152] =>.Microsoft Windows Early Launch Anti-malware Publisher®
O58 - SDL:2015/11/06 15:50:34 A . (.AVG Technologies CZ, s.r.o. - AVG File Vault Driver.) -- C:\WINDOWS\System32\drivers\avgdiska.sys [184240] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2015/12/04 14:35:38 A . (.AVG Technologies CZ, s.r.o. - AVG IDS Application Activity Monitor Driver.) -- C:\WINDOWS\System32\drivers\avgidsdrivera.sys [315312] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2015/08/20 12:58:04 A . (.AVG Technologies CZ, s.r.o. - AVG Application Activity Monitor Helper Dri.) -- C:\WINDOWS\System32\drivers\avgidsha.sys [298416] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2015/10/21 16:16:48 A . (.AVG Technologies CZ, s.r.o. - AVG AVI Loader Driver.) -- C:\WINDOWS\System32\drivers\avgldx64.sys [284080] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2015/08/14 13:24:40 A . (.AVG Technologies CZ, s.r.o. - AVG Logging Driver.) -- C:\WINDOWS\System32\drivers\avgloga.sys [398256] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2015/12/04 14:36:34 A . (.AVG Technologies CZ, s.r.o. - AVG Resident Shield Minifilter Driver.) -- C:\WINDOWS\System32\drivers\avgmfx64.sys [258480] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2015/12/04 14:27:46 A . (.AVG Technologies CZ, s.r.o. - AVG Anti-Rootkit Driver.) -- C:\WINDOWS\System32\drivers\avgrkx64.sys [42416] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2015/12/16 01:14:24 A . (.AVG Technologies CZ, s.r.o. - AVG Firewall driver.) -- C:\WINDOWS\System32\drivers\avgwfpa.sys [315840] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2012/07/26 06:00:49 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [539376] =>.Microsoft Windows®
O58 - SDL:2012/09/20 07:11:24 A . (.Conexant Systems Inc. - 64-bit High Definition Audio Function Drive.) -- C:\WINDOWS\System32\drivers\CHDRT64.sys [1609376] =>.Conexant Systems, Inc.®
O58 - SDL:2012/07/26 06:00:52 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3295984] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:52 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64752] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:52 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [411888] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:52 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\WINDOWS\System32\drivers\iirsp.sys [45296] =>.Microsoft Windows®
O58 - SDL:2012/07/19 10:21:42 A . (.Qualcomm Atheros Co., Ltd. - Qualcomm Atheros Ar81xx series PCI-E Gigabi.) -- C:\WINDOWS\System32\drivers\L1C63x64.sys [110744] =>.Atheros Communications Inc.®
O58 - SDL:2012/07/26 06:00:52 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108784] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:52 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [92400] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:52 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_scsi.sys [116976] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:52 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [81136] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:52 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [51952] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:52 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\MegaSR.sys [353008] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:55 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [64240] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:55 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\WINDOWS\System32\drivers\nfrd960.sys [52464] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:55 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150256] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:55 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168176] =>.Microsoft Windows®
O58 - SDL:2012/08/03 10:55:34 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\WINDOWS\System32\drivers\RtsPStor.sys [340112] =>.Realtek Semiconductor Corp®
O58 - SDL:2012/06/30 03:00:53 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driverr.) -- C:\WINDOWS\System32\drivers\rtwlane.sys [1119232] =>.Realtek Semiconductor Corporation
O58 - SDL:2012/07/26 09:11:43 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2012/07/26 06:00:55 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44784] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:56 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81648] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:55 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [30960] =>.Microsoft Windows®
O58 - SDL:2012/06/18 11:07:50 A . (.Advanced Micro Devices - AMD USB Filter Driver.) -- C:\WINDOWS\System32\drivers\usbfilter.sys [57000] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2012/07/26 06:00:58 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19184] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:58 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [164080] =>.Microsoft Windows®
O58 - SDL:2012/07/26 06:00:58 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [322800] =>.Microsoft Windows®

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (2) - 20s
O61 - LFC: 2016/01/21 11:36:11 A . (.Copyright (C) 2014.) -- C:\Users\lhyla\Desktop\Windows81LoaderbyDAZCompleteActivatorDownload__11652_i1827802804_il7.exe [1257464]
O61 - LFC: 2016/01/21 07:28:53 A . (..) -- C:\Users\lhyla\AppData\Local\Microsoft\Windows\1036\StructuredQuerySchema.bin [361866]

---\\ Associations Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (4) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Recherche d'infection sur les navigateurs (3) - 1s
O69 - SBI: SearchScopes [HKCU] {AA9A4890-4262-4441-8977-E2FFCBFB706C} - (Yahoo!) - http://fr.yhs4.search.yahoo.com/ =>.Yahoo Search
O69 - SBI: SearchScopes [HKLM] {31FBE331-B1C5-42A9-AF9A-5DF47331930C} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {AA9A4890-4262-4441-8977-E2FFCBFB706C} - (Yahoo!) - http://fr.yhs4.search.yahoo.com/ =>.Yahoo Search

---\\ Enumère les services démarrés par Svchost (34) - 3s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [190976] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [149504] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [149504] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [309248] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1366016] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [1071104] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [99840] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [358400] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [107520] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [62976] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [438784] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [305664] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [3286528] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [826368] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [565760] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [894464] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [69632] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151552] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [105472] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1282560] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [219648] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\WINDOWS\system32\mmcss.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [134144] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [209920] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [291328] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [84992] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [97792] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [190976] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [1968128] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [47104] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [207872] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [161792] =>.Microsoft Corporation
O83 - Search Svchost Services: SystemEventsBroker (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) -- C:\WINDOWS\System32\SystemEventsBrokerServer.dll [178176] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (3) - 10s
O87 - FAEL: "{35DE7C27-2413-40AE-A7D0-D80EBC9938A6}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe (.not file.)
O87 - FAEL: "{6C27CF2A-965C-435F-8D37-0EDB3D3286A4}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe (.not file.)
O87 - FAEL: "{35AFEC95-F6BC-4912-AAD7-B346D753F697}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe (.not file.)

---\\ Scan Additionnel (8) - 0s
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ByteFence =>.Superfluous.ByteTechnologies
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ByteFence =>.Superfluous.ByteTechnologies
HKLM\SOFTWARE\Wow6432Node\ByteFence =>.Superfluous.ByteTechnologies
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
C:\Program Files (x86)\ScreenSnapshotTool =>PUP.Optional.ScreenSnapshotTool
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ByteFence Anti-Malware =>.Superfluous.ByteTechnologies
C:\Users\lhyla\AppData\Roaming\ScreenSnapshotTool =>PUP.Optional.ScreenSnapshotTool
C:\WINDOWS\Prefetch\BYTEFENCE-INSTALLER_2.1.0.3.E-41D094B3.pf =>.Superfluous.ByteTechnologies

---\\ Récapitulatif des éléments trouvés sur votre station (4) - 0s
http://www.nicolascoolman.fr/?p=546 =>PUP.Optional.Browser
http://www.nicolascoolman.fr/logiciels-superflus =>.Superfluous.ByteTechnologies
http://www.nicolascoolman.fr/?p=279 =>Adware.InstallCore
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.ScreenSnapshotTool

~ End of the scan, 19361 items in 00h13mn24s (601)(0)

Publicité


Signaler le contenu de ce document

Publicité